> Markdown version of [/jobs/ext/2618274-cloud-security-and-infrastructure-engineer](https://www.wearedevelopers.com/jobs/ext/2618274-cloud-security-and-infrastructure-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Security and Infrastructure Engineer - **Company:** Chamber Cardio - **Location:** Washington, DC, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Cloud Computing, Cloud Computing Security, Cloud Engineering, Encodings, Github, Identity and Access Management, Intrusion Detection and Prevention, Key Management, Network Security, Network Planning and Design, Network Segmentation, Zero Trust Network Access, Security Information and Event Management, Software Vulnerability Management, Datadog, Data Logging, Amazon Virtual Private Cloud (VPC), Serverless Computing, Vulnerability Analysis - **Published:** August 1, 2026 - **Apply:** https://www.adzuna.com/details/5823261635 ## About the Role * 5+ years of hands-on AWS cloud security and infrastructure engineering (IAM, network security, threat detection, compliance) in production - ideally including building a security program from scratch. * Deep fluency with AWS security services (GuardDuty, Security Hub, Config, CloudTrail, KMS, Inspector) and IAM policy design. * Experience with multi-account AWS governance (Control Tower, Organizations, VPC/network design) and container/serverless infrastructure (ECS, EKS, Lambda). * Familiarity with security frameworks and compliance standards (CIS, HIPAA, HITRUST, AWS Well-Architected). * US Citizenship is required., Remote opportunity with the ability to work ET or CT hours. You must be authorized to work in the US without sponsorship. Periodic travel to practice sites or Chamber offices may be required. ## Description We're looking for a Cloud Security and Infrastructure Engineer to build and mature Chamber's AWS security program and cloud infrastructure. This role owns cloud security architecture, detection and response, HIPAA compliance, and infrastructure decisions that keep our platform secure, reliable, and scalable. This is a role for someone who moves work forward without waiting for perfect conditions, brings clarity to ambiguous situations, and follows through. We have live production infrastructure and active patient data running through it today, and the security posture protecting it needs to hold up and keep improving. Key Responsibilities * Design and enforce least-privilege IAM architectures, network segmentation, and cloud security controls (SCPs, secrets management, encryption, runtime threat detection) across multiple AWS accounts. * Build automated detection and response pipelines, using AI tools to turn security findings into fast, actionable remediation. * Maintain GitHub-based CI/CD pipelines and automation frameworks alongside the engineering team. * Lead cross-functional security initiatives, embedding threat modeling and security reviews into the architecture and development lifecycle. * Own vulnerability management, AWS security posture monitoring, incident detection and response, and HIPAA compliance programs. * Shape cloud architecture decisions - balancing security, cost, and reliability - around zero-trust and defense-in-depth principles. * Review and document the workflows, staffing, and tooling for each active care program, and produce a written summary of gaps and immediate priorities. What You'll Achieve in Your First 90 Days * Complete a security/configuration gap analysis against CIS, HIPAA, and existing tooling (AWS Inspector, Security Hub, Datadog). * Identify automation opportunities and standardize AWS account deployment using Control Tower. * Validate SIEM logging ingestion and flag gaps. * Evaluate next-gen vulnerability scanners and build a comparison scorecard. ## Related Videos - [30 powerful AWS hacks in just 30 minutes: Boost your developer productivity](https://www.wearedevelopers.com/videos/1624-30-powerful-aws-hacks-in-just-30-minutes-boost-your-developer-productivity) - [A Brief History of Data Storage](https://www.wearedevelopers.com/videos/974-a-brief-history-of-data-storage) - [Debugging in the Dark](https://www.wearedevelopers.com/videos/1658-debugging-in-the-dark) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [JSON and Beyond](https://www.wearedevelopers.com/videos/968-json-and-beyond) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Why Attend a Developer Event in 2026?](https://www.wearedevelopers.com/magazine/688-why-attend-a-developer-event-in-2026) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)